Reset Authenticators and Factors for Users in Okta
Last Updated:
Overview
Administrators reset authenticators or Multi-Factor Authentication (MFA) factors for users who require re-enrollment or have lost access to their devices. Resetting these factors allows users to set up their authentication methods again during their next login. Navigate to the Directory section of the Admin Console to reset authenticators for specific users or in bulk across both Okta Identity Engine (OIE) and Okta Classic Engine.
Applies To
- Okta Identity Engine (OIE)
- Okta Classic Engine
- Multi-Factor Authentication (MFA)
- Authenticators
Solution
What are the steps to reset authenticators for a specific user in OIE?
Reset an authenticator for a specific user in OIE by navigating to the user profile and selecting the reset option from the actions menu.
- In the Admin Console, navigate to Directory > People.
- Select the specific user.
- Select More Actions in the top right area of the user profile.
- Select Reset Authenticators.
- Select the factors to reset from the displayed list.
- After the reset, Okta prompts the user to re-enroll in the MFA policy during the next login. There is no time limit on the ability to re-enroll.
- NOTE: To reset all factors for multiple users in OIE, follow Reset User Factors in Bulk Using Rockstar and Postman.
What are the steps to reset all factors for one or more users in the Okta Classic Engine?
Reset all MFA factors for one or multiple users simultaneously in Okta Classic Engine by using the bulk reset feature in the directory.
NOTE: This action resets all factors for the selected users. Users must set up all their factors again.
- In the Admin Console, navigate to Directory > People.
- Click Reset Multifactor.
- Select the users requiring an MFA reset.
- Click Reset Multifactor Authentication. Okta displays a confirmation prompt.
- Click Reset to proceed. Okta cannot undo this action.
How does an administrator reset one or more factors for a single user in Okta Classic Engine?
Reset one or more specific factors for a single user in Okta Classic Engine by accessing the user profile and selecting the desired factors to reset.
NOTE: This action allows selecting and resetting any of the configured factors. Users must set up only the reset factor again.
- In the Admin Console, navigate to Directory > People.
- Select the user requiring an MFA reset.
- Click More Actions, and then select Reset Multifactor or Reset Authenticators.
- Select the factors to reset.
- Click Reset Selected Factors or Reset All. Okta displays a confirmation prompt.
- NOTE: The Reset All option is only available for the Okta Classic Engine.
- Click Reset to proceed. Okta cannot undo this action.
